CVE-2021-42374
An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of service when crafted LZMA-
An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed. This can be triggered by any applet/format that.
MEDIUM · CVSS 5.3
EPSS 0.00064
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0